Unrated severityNVD Advisory· Published Jun 22, 2006· Updated Jun 16, 2026
CVE-2006-3160
CVE-2006-3160
Description
Cross-site scripting (XSS) vulnerability in fm.php in ONEdotOH Simple File Manager (SFM) 0.24a and earlier allows remote attackers to inject arbitrary web script or HTML via the msg parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:onedotoh:simple_file_manager:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:onedotoh:simple_file_manager:*:*:*:*:*:*:*:*range: <=0.24a
- (no CPE)range: <=0.24a
Patches
Vulnerability mechanics
References
6News mentions
0No linked articles in our index yet.